Certificates Renewal

Dominique DUCHEMIN 831 Reputation points
2021-03-03T04:47:24.047+00:00

Hello,

As MEMCM 2010 is using PKI in our environment how to do the renewal:

  1. to be alerted about the expiration: does a mechanism exists in MEMCM?
  2. what are the step for the renewal:
    SCUP Signing Certificate
    Web IBCM Server Certificate
    Web Server Certificate
    Web and Reporting Server Certificate
    Workstation Authentication Certificate
    Distribution Point Certificate

a. renewal of the certificate
b. request the new certificate on each server DPs, Software Updates, ...
c. copy the cert in a specific location for all DPs.
c. assign the new certificate in \Administration\Overview\Distribution Points ==> Tab Communication

anything missing?
Thanks,
Dom

Microsoft Configuration Manager
0 comments No comments
{count} votes

3 additional answers

Sort by: Most helpful
  1. SunnyNiu-MSFT 1,696 Reputation points
    2021-03-04T10:03:04.87+00:00

    @Dominique DUCHEMIN
    Here is an answer to your question that hopefully you find helpful!

    We may renew these certificates by following the steps you listed.
    In addition, when SCCM was set to use PKI, if the server and client certificates have been set to automatically renew their certificates, there is no need to manually renew them.


    If the response is helpful, please click "Accept Answer"and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    1 person found this answer helpful.
    0 comments No comments

  2. Dominique DUCHEMIN 831 Reputation points
    2021-03-06T19:09:22.64+00:00

    Hello,

    Thank you for the answer.

    In addition, when SCCM was set to use PKI, if the server and client certificates have been set to automatically renew their certificates, there is no need to manually renew them.

    1. How do you to this when the certificates are created? in SCCM? in AD?
    2. How do you check this when the certificates already exist? in SCCM? in AD?
    3. How do you change this when it was not previously set? in SCCM? in AD?

    Thanks,
    Dom

    0 comments No comments

  3. Maria João Moreno 1 Reputation point
    2021-11-25T17:40:17.59+00:00

    Certified Azure Data Engineer Associate

    I received the notification for certification renewal until May 8th and I' ve this questions:

    Can I do it free of charge?
    Can I repeat it until we pass?
    Do I have to repeat it every year?